BigHugger
sk Skill · meltedinhex

deobfuscating-malicious-powershell

Deobfuscates malicious PowerShell by decoding -EncodedCommand, reversing string and format obfuscation, resolving base64/gzip/IEX layers, and recovering the final payload and IOCs. Activates for requests to deobfuscate, decode, or analyze obfuscated PowerShell commands or scripts.

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
Pythonwindowsbashscript-analysisbase64deobfuscationpowershellmalware
Host repository
meltedinhex/analyst-ai-pack
Version
1.0.0
Licence
Apache-2.0
Host stars
22
Host language
Python